Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 5.0

    MEDIUM
    CVE-2001-0784

    Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack using encoded URL characters.... Read more

    Affected Products : icecast
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 6.2

    MEDIUM
    CVE-2001-0905

    Race condition in signal handling of procmail 3.20 and earlier, when running setuid, allows local users to cause a denial of service or gain root privileges by sending a signal while a signal handling routine is already running.... Read more

    Affected Products : procmail linux
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0758

    Directory traversal vulnerability in Shambala 4.5 allows remote attackers to escape the FTP root directory via "CWD ..." command.... Read more

    Affected Products : shambala_server
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0767

    Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.... Read more

    Affected Products : guildftpd
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2001-0741

    Cisco Hot Standby Routing Protocol (HSRP) allows local attackers to cause a denial of service by spoofing HSRP packets.... Read more

    Affected Products : hsrp
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0756

    CatalogMgr.pl in VirtualCatalog (incorrectly claimed to be in VirtualCart) allows remote attackers to execute arbitrary code via the template parameter.... Read more

    Affected Products : virtualcatalog
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0794

    Buffer overflow in A-FTP Anonymous FTP Server allows remote attackers to cause a denial of service via a long USER command.... Read more

    Affected Products : anonymous_ftp_server
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0751

    Cisco switches and routers running CBOS 2.3.8 and earlier use predictable TCP Initial Sequence Numbers (ISN), which allows remote attackers to spoof or hijack TCP connections.... Read more

    Affected Products : cbos
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 10.0

    HIGH
    CVE-2001-0746

    Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, ... Read more

    Affected Products : one_web_server iplanet_web_server
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 2.1

    LOW
    CVE-2001-0907

    Linux kernel 2.2.1 through 2.2.19, and 2.4.1 through 2.4.10, allows local users to cause a denial of service via a series of deeply nested symlinks, which causes the kernel to spend extra time when trying to access the link.... Read more

    Affected Products : linux_kernel
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2001-0734

    Hitachi Super-H architecture in NetBSD 1.5 and 1.4.1 allows a local user to gain privileges via modified Status Register contents, which are not properly handled by (1) the sigreturn system call or (2) the process_write_regs kernel routine.... Read more

    Affected Products : netbsd
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0771

    Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.... Read more

    Affected Products : spyanywhere
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0788

    Internet Software Solutions Air Messenger LAN Server (AMLServer) 3.4.2 allows remote attackers to obtain an absolute path for the server directory by viewing the Location header.... Read more

    Affected Products : air_messenger_lan_server
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0778

    OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20).... Read more

    Affected Products : omnihttpd
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0776

    Buffer overflow in DynFX MailServer version 2.10 allows remote attackers to conduct a denial of service via a long username to the POP3 service.... Read more

    Affected Products : dynfx_mailserver
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0753

    Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain privileges.... Read more

    Affected Products : cbos
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.5

    HIGH
    CVE-2001-0792

    Format string vulnerability in XChat 1.2.x allows remote attackers to execute arbitrary code via a malformed nickname.... Read more

    Affected Products : xchat
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 4.6

    MEDIUM
    CVE-2001-0772

    Buffer overflows and other vulnerabilities in multiple Common Desktop Environment (CDE) modules in HP-UX 10.10 through 11.11 allow attackers to cause a denial of service and possibly gain additional privileges.... Read more

    Affected Products : hp-ux
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 7.2

    HIGH
    CVE-2001-0739

    Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.... Read more

    Affected Products : secure_linux
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
  • 5.0

    MEDIUM
    CVE-2001-0790

    Specter IDS version 4.5 and 5.0 allows a remote attacker to cause a denial of service (CPU exhaustion) via a port scan, which causes the server to consume CPU while preparing alerts.... Read more

    Affected Products : specter_ids
    • Published: Oct. 18, 2001
    • Modified: Apr. 03, 2025
Showing 20 of 294633 Results